|
246541
|
9.8 |
CRITICAL
Network
|
mutt neomutt debian canonical
|
mutt neomutt debian_linux ubuntu_linux
|
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long INTERNALDATE field.
|
CWE-787
Out-of-bounds Write
|
CVE-2018-14350
|
2024-11-21 12:48 |
2018-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246542
|
9.8 |
CRITICAL
Network
|
debian mutt neomutt canonical
|
debian_linux mutt neomutt ubuntu_linux
|
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a NO response without a message.
|
CWE-20
Improper Input Validation
|
CVE-2018-14349
|
2024-11-21 12:48 |
2018-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246543
|
6.5 |
MEDIUM
Network
|
debian gnu
|
debian_linux libextractor
|
GNU Libextractor before 1.7 contains an infinite loop vulnerability in EXTRACTOR_mpeg_extract_method (mpeg_extractor.c).
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2018-14347
|
2024-11-21 12:48 |
2018-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246544
|
8.8 |
HIGH
Network
|
debian gnu
|
debian_linux libextractor
|
GNU Libextractor before 1.7 has a stack-based buffer overflow in ec_read_file_func (unzip.c).
|
CWE-787
Out-of-bounds Write
|
CVE-2018-14346
|
2024-11-21 12:48 |
2018-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246545
|
7.5 |
HIGH
Network
|
sddm_project
|
sddm
|
An issue was discovered in SDDM through 0.17.0. If configured with ReuseSession=true, the password is not checked for users with an already existing session. Any user with access to the system D-Bus …
|
CWE-287 CWE-613
Improper Authentication Insufficient Session Expiration
|
CVE-2018-14345
|
2024-11-21 12:48 |
2018-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246546
|
9.8 |
CRITICAL
Network
|
trivum
|
webtouch_setup_v9_firmware
|
Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allow unauthorized remote attackers to reset the authentication via the "/xml/system/setAttribute.xml" URL, using…
|
NVD-CWE-noinfo
|
CVE-2018-13862
|
2024-11-21 12:48 |
2018-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246547
|
9.8 |
CRITICAL
Network
|
trivum
|
webtouch_setup_v9_firmware
|
Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allows unauthorized remote attackers to reboot or execute other functions via the "/xml/system/control.xml" URL, …
|
NVD-CWE-noinfo
|
CVE-2018-13861
|
2024-11-21 12:48 |
2018-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246548
|
7.5 |
HIGH
Network
|
trivum
|
c4_professional_firmware
|
MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18 allows unauthorized remote attackers to obtain sensitive information via the "/xml/…
|
CWE-200
Information Exposure
|
CVE-2018-13860
|
2024-11-21 12:48 |
2018-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246549
|
9.8 |
CRITICAL
Network
|
trivum
|
c4_professional_firmware
|
MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18, allow unauthorized remote attackers to reset the authentication via the "/xml/syst…
|
NVD-CWE-noinfo
|
CVE-2018-13859
|
2024-11-21 12:48 |
2018-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246550
|
9.8 |
CRITICAL
Network
|
trivum
|
c4_professional_firmware
|
MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional allows unauthorized remote attackers to reboot or execute other functions via the "/xml/system/control.xml" URL, using …
|
NVD-CWE-noinfo
|
CVE-2018-13858
|
2024-11-21 12:48 |
2018-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|